CVE-2022-32519
A CWE-257: Storing Passwords in a Recoverable Format vulnerability exists that could result in unwanted access to a DCE instance when performed over a network by a malicious third-party. Affected Products: Data Center Expert (Versions prior to V7.9.0)
Scoring
- Severity
- HIGH
- CVSS base score
- 8
- CVSS vector
- CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
- EPSS probability
- 0.38%
- CWE
- CWE-257
- Published
- 2023-01-30
- Last modified
- 2026-03-13
Affected products
- Schneider Electric Data Center Expert
Weakness type
Related vulnerabilities
- CVE-2026-20128 — Cisco Catalyst SD-WAN Manager Information Disclosure Vulnerability
- CVE-2025-8904 — Privilege escalation issue in Amazon EMR Secret Agent component
- CVE-2025-6996 — Improper Encryption in Ivanti Endpoint Manager
- CVE-2025-6995 — Improper Encryption in Ivanti Endpoint Manager
- CVE-2026-30785 — RustDesk Encrypts Local Passwords with World-Readable Machine ID and Fixed Zero Nonce (XSalsa20-Poly1305)
- CVE-2019-3736 — Dell EMC Integrated Data Protection Appliance versions prior to 2.3 contain a password storage vulnerability in the ACM
- CVE-2022-34838 — ABB Ability TM Operations Data Management Zenon Zenon Log Server file access control
- CVE-2023-31150 — Storing Passwords in a Recoverable Format